Full Disclosure mailing list archives

Re: Is OWASP vulnerable ??


From: "Michael Silk" <michaelslists () gmail com>
Date: Mon, 12 Mar 2007 08:34:15 +1100

hahahaha, that was definately the most valuable contribution to this whole
discussion.


On 3/12/07, czino2 () aol com <czino2 () aol com> wrote:

 *The Knaller 2007 * You surf in the Internet and pay billions others, to
reach you as customers.
 It wouldn't be beautiful, if you could also get what ??
This is no more dream now. Agloco makes this possible. No costs or
subsequent costs

?? and the income ??

Become partners and another 5 partners advertise.
 Everybody surfs for 5 hours in the month
makes 761.25 dollars = with 10 partners 1517.50 dollars =
(The computer is in the member area)

*Registering now free of charge. <http://www.agloco.com/r/BBCD4181>*

In addition, you get money in the Internet by the surfing at activated
view beard. 100% of the profit are distributed to the members by AGLOCOT
because. The one who further builds up the community can in addition earn
more: because you recommend AGLOCOT per more persons, you can make a the
higher profit. This comes that not only your online hours but also that one
of your recommendations be collected on your account. And just as also the
hours of the recommendations of your recommendations up to the 5th level!
This will be a strong drive for this to extend the member number very fast
for certain. In the month, you can get more as 7,000 shares if e.g. you
have attracted 10 persons, and each of these in turn 5 persons!

Lose no time. This is a Win-Win opportunity and all the more profitable it
gets for you if you still have your friends and family registered today
before others make it!


-----Ursprüngliche Mitteilung-----
Von: jf () danglingpointers net
An: Valdis.Kletnieks () vt edu
Cc: full-disclosure () lists grok org uk
Verschickt: So., 11. Mrz. 2007, 13:21
Thema: Re: [Full-disclosure] Is OWASP vulnerable ??

> Paul, if you find a way to get something to execute an eval() with data that
> you control, and all you can get out of that is an information disclosure,
> you *really* need to find a new line of work.

Valdis, its javascript, as in client side, if you want to eval()
something on your machine, use notepad/vi. An undefined variable isn't
going to get you *anywhere* without some other bug, i.e. XSS, which makes
the undefined variable a moot point. *You* should consider a new line of
work.



_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

 ------------------------------
*Kostenlos: AOL eMail* <http://www.aol.de/email/>
2 GB Speicherplatz sowie erstklassiger Spam- und eMail Virenschutz.
Sichern Sie sich Ihre persönliche eMail Adresse noch heute!

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/




--
mike
00110001 <3 00110111
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: